PT-2013-6072 · Cisco · Cisco Nx-Os+1

Published

2013-11-13

·

Updated

2013-11-14

·

CVE-2013-6683

CVSS v2.0

6.1

Medium

VectorAV:A/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Cisco NX-OS (affected versions not specified)
Description The IPv6 implementation in Cisco NX-OS does not properly handle neighbor-table adjacencies, allowing remote attackers to cause a denial of service (NS processing outage) via a series of malformed packets. This is due to improper processing of adjacencies in the IPv6 neighbor table. An attacker could exploit this by sending a sequence of malformed IPv6 packets to an affected device, causing it to stop responding to neighbor solicitation (NS) requests and resulting in a limited denial of service (DoS) condition. To exploit this, an attacker would need access to the same broadcast or collision domain of the targeted device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-6683

Affected Products

Cisco Nx-Os
Cisco Nexus